Jenkins Remote Code Execution

Discussion in 'News Aggregator' started by Packet Storm, 20 Apr 2022.

  1. Packet Storm

    Packet Storm Guest

    Jenkins exploit that chains CVE-2018-1000861, CVE-2019-1003005 and CVE-2019-1003029 to a more reliable and elegant pre-auth remote code execution. Jenkins versions below 2.138 are affected.

    Continue reading...
     

Share This Page

Loading...